Privacy Policy
This Privacy Policy describes how Drip Drops (“Drip Drops,” “we,” “our,” or “us”) collects, uses, and discloses information about you. It applies to information collected when you access or use our products or services (the “Services”) through our website at dripdrops.co and our iOS and Android apps (together, the “Site”).
Please read it carefully, so that you understand our practices. If you do not agree with them, your choice is not to use the Site or the Services. We encourage you to check back, so that you stay informed about our practices and the choices available to you.
- 1. What we collect
- 2. How we use it
- 3. Who we share it with
- 4. Payments, payouts and shipping
- 5. Cookies and similar technologies
- 6. Your choices and rights
- 7. How long we keep it
- 8. Where it is processed
- 9. How we protect it
- 10. Age restrictions
- 11. Changes to this policy
- 12. Contacting us
What we collect
We collect information about you in three ways:
- You give it to us. When you join the waiting list on our website, create an account, verify your phone number, place an order, have a piece shipped, request a withdrawal, or write to support.
- Automatically. As you use the app, we record the activity your account generates, basic technical data about the device you use, the IP address it connects from, and, in the apps, which screens you visit and which steps you complete, tied to a random identifier the app creates on first launch. On the website, our own measurement records the pages and sections you view, the buttons you click, the site that referred you and any campaign tags in the link you arrived by, tied to a random identifier stored in your browser; the TikTok and Meta pixels described in section 5 separately record which pages you visit and whether you join the list.
- From third parties. From the sign-in provider you choose, from our payment and payouts processor, and from the carrier that delivers your parcel.
The categories we collect are:
- Account and identity. The account identifier and email address released by Sign in with Apple or Google when you use it, or the email address you give us directly. If you use Apple’s Hide My Email, we receive the relay address rather than your real one.
- Date of birth and age attestation. Your date of birth, and a record that you confirmed you are 18 or over - the time you confirmed it, and the IP address you confirmed it from.
- Phone number. Your phone number, and the time it was verified by SMS code.
- Agreement records. The time you accepted the Terms of Service, the IP address you accepted from, and which version of the document you accepted.
- Approximate location, from your IP address. Each time you open a box, view a reveal or sell a piece back, our servers work out which US state your network address belongs to, using a licensed IP-address database (IP Geolocation by DB-IP), so that we can apply the state restrictions in the Terms. The IP address is kept on the record of that action. We do not use GPS and never ask your device for its location.
- Shipping details. The recipient name, postal address and contact details for any piece you have shipped, and the tracking information that comes back.
- Transaction and activity data. The money you add and withdraw, the boxes you open, the pieces credited to you, the pieces you sell back, and your running balance.
- Payment references. A reference from our payment processor, and the brand and last four digits of the card. Full card numbers never reach us - see section 4.
- Identity and bank details, collected through Stripe. If you withdraw cash, Stripe collects what it needs to verify you and pay you. That can include a government identification document, a passport or driver’s licence number, a social security or taxpayer identification number, your date of birth, and your bank account details. Stripe collects this on our behalf, as part of providing payouts to you, on its own hosted pages.
- Communications. What you write to us, and what we write back.
- Device and diagnostic data. App version, device model, operating system version, IP address, and crash and error reports.
- App usage. A random identifier the app creates on first launch, the app version, and which screens you visit and which steps you complete or abandon - for example, that you viewed a box, opened the add-money screen, or closed the payment sheet without paying, and, when a step fails, the short reason the app was given. It is joined to your account once you sign in. It goes to our own servers only and is shared with no one; it tells us where people stop before and after their first opening. The iOS and Android apps both send it.
- Site usage. A random identifier that dripdrops.co stores in your browser, the pages and sections of the Site you view, the buttons you click, the site that referred you (its address only, not the page) and any campaign tags in the link you arrived by. It goes to our own servers only and is shared with no one, and no email address is attached to it - if you join the waiting list, it records that a join happened, not who joined.
So that the last category is not misread: because Stripe collects it on our behalf, we count it as information we collect, and we have listed it here rather than leave it unsaid. But it is entered directly into Stripe’s pages, and none of it - no identification document, no social security number, no bank account number - is transmitted to or stored on Drip Drops servers. What comes back to us is Stripe’s account identifier for you, and whether Stripe has cleared that account to receive money. The same division applies to full card numbers. Section 4 sets out both.
How we use it
- To operate the Services. Creating and securing your account, opening boxes, keeping your balance, fulfilling shipments, and telling you where your parcel is.
- To check eligibility. Confirming that you are 18 or over, that your phone number is real, and that you are not in a state where the Service is unavailable; and recording your acceptance of the Terms.
- To take and make payments. Processing deposits, buybacks and withdrawals, and resolving refunds, chargebacks and disputes.
- To support you. Answering your questions and investigating problems with your account or an order.
- To keep the Services safe. Detecting and preventing fraud and abuse, including duplicate accounts opened to claim a one-per-person benefit more than once; enforcing our Terms; and exercising or defending legal rights.
- To improve the Services. Diagnosing crashes and errors, and understanding which parts of the app fail or confuse people, including where people stop before their first opening.
- To communicate with you. Service messages about your account, orders and shipments, which you cannot switch off while you hold an account; and, if you have opted in, occasional messages about new boxes and offers, which you can switch off at any time.
We do not sell your personal information. The website shares limited information about your visit with TikTok and Meta to measure and target our advertising, which some privacy laws count as sharing for cross-context behavioural advertising; section 5 says exactly what is shared and section 6 how to opt out. The app shares the events section 5 lists with TikTok and Meta in the same way, and nothing else.
Who we share it with
- Service providers who perform functions on our behalf. They are named individually in section 4, and may use your information only to provide those services to us.
- Advertising platforms. TikTok and Meta, through the pixels on the website and their measurement software in the iOS app, and Meta also through reports our own servers send it, in each case only for what section 5 describes. Each learns the amount of a deposit, and nothing else about your account, your orders or your balance. Meta additionally receives a hashed form of the email address and phone number on your account and of the account identifier, so that it can recognise you as one person across the website, the app and its own platforms; it never receives them in readable form, and with the iOS app’s events it receives them only if you allow tracking when iOS asks. The Android app carries neither platform’s software, and our servers send neither platform anything about what you do in it.
- Professional advisers - accountants, lawyers and insurers - where they need it in order to advise us.
- Law enforcement and regulators, where we believe in good faith that disclosure is required by law or legal process, or is necessary to protect the rights, property or safety of our users, of Drip Drops, or of the public.
- Another business, in connection with a sale, merger, financing, change of control, bankruptcy, or similar transaction involving some or all of our assets. If such a transaction would transfer control of your personal information to a non-affiliate, we will take commercially reasonable steps to notify you by email or by posting an updated policy on this page.
- Anyone you direct us to, with your consent.
The Services may contain links to third-party sites and services. Those links are for your convenience and do not imply endorsement, and we are not responsible for those parties’ practices. Anything you give a third party on its own site is covered by that party’s privacy practices, not by this policy.
Payments, payouts and shipping
These are the providers that receive your information, and what each one gets:
- Stripe - card payments. Deposits are processed by Stripe. Card details are entered into Stripe’s own payment interface and transmitted directly to Stripe; full card numbers never touch Drip Drops servers. We retain only a payment reference and the card brand and last four digits, so we can recognise the payment and handle refunds and disputes. See stripe.com/privacy.
- Stripe Connect - withdrawals. Cash withdrawals are paid out through Stripe Connect. Stripe collects whatever identity and bank details it needs to verify you and pay you - on our behalf, but on its own hosted onboarding pages, and under Stripe’s privacy policy as well as this one. Nothing from that process reaches our API: we store only Stripe’s account identifier for you, and whether Stripe has cleared that account to receive money.
- Telnyx - phone verification. Verification codes are sent by SMS through Telnyx, which receives your phone number in order to deliver the message.
- EasyPost and the carrier - shipping. When you have a piece shipped, we pass the recipient name, address and contact details to EasyPost, which buys the label and returns tracking, and to the carrier that actually carries the parcel.
- Render - hosting. The Site and our API run on Render, in the United States.
- Sentry - diagnostics. Crash and error reports go to Sentry, configured not to attach personal information to reports by default.
- Resend - email. The email we send you - the note when you join the list, and messages about your account and orders - goes out through Resend, which receives your email address and the message in order to deliver it.
- Cloudflare - images. The photographs of pieces shown in the app are served from Cloudflare, which sees your device’s IP address when it loads them.
- Apple and Google - sign-in. If you use Sign in with Apple or Google, that provider knows you signed in to Drip Drops, and tells us the identifier and email address you chose to release. We never receive your password.
- Meta - advertising measurement. The website loads the Meta Pixel, which tells Meta the pages you view on dripdrops.co and when you join the list, together with your IP address, browser details, and the identifiers in Meta’s cookies; the iOS app carries Meta’s measurement software; and our servers send Meta their own copy of the list join, the account registration and each deposit, so that Meta counts each once. Meta uses this to tell us whether people who saw our advertising reached the site or the app, and to improve how that advertising is shown. Section 5 has the details and the opt-out. See facebook.com/privacy/policy.
Cookies and similar technologies
The website at dripdrops.co keeps one item of its own in your browser’s local storage, named dd_visitor: a random identifier that lets our servers tell a new visitor from a returning one. With it we record the site usage described in section 1 - pages, sections, buttons, referrer and campaign tags - on our own servers and nowhere else. It is not a cookie, it is not read by anyone but us, and clearing the site’s data in your browser removes it. The opt-out switch below, Global Privacy Control and Do Not Track do not affect it, because nothing about it is shared or sold.
The website also loads two advertising trackers, the TikTok Pixel and the Meta Pixel. The pixels themselves receive neither your email address nor anything else you type, and learn nothing about an account, an order or a balance; what our own servers send Meta separately is set out below.
The TikTok Pixel tells TikTok which pages of the Site you view, which buttons you press and whether you join the waiting list, together with your IP address, your browser and device details, the page you arrived from and the time. It sets two cookies of TikTok’s, named _ttp and _tt_enable_cookie, so that TikTok can recognise the same browser again; if you are signed in to TikTok, TikTok may connect the visit to your TikTok account. We use it to measure whether our advertising on TikTok works and to show that advertising to people like the ones who visit.
The Meta Pixel tells Meta which pages of the Site you view and whether you join the waiting list, together with your IP address and browser details. It sets two cookies of Meta’s, named _fbp, which identifies your browser to Meta, and _fbc, which is set only when you arrive from a Meta advertisement and records which advertisement you clicked; if you are signed in to Facebook or Instagram, Meta may connect the visit to your account. Every report is sent with Meta’s Limited Data Use flag, which restricts how Meta may use it where state privacy law applies. We use it to measure whether our advertising on Meta’s platforms works and to improve how it is shown.
The iOS app carries TikTok’s and Meta’s measurement software for the same purpose. Each is told that the app was installed and opened, that a phone number was verified for a new account, that a box’s page was viewed and which box, that the add-money screen was opened, and that money was added to a balance, with the amount. With each of those it sends your device model, operating system version and IP address, an identifier the software makes up for the app, and your device’s advertising identifier only if you allow tracking when iOS asks, which it does once, after you accept the Terms. Neither piece of software receives your name, email address or phone number, the account identifier, which boxes you open, what you are credited or what you ship. The Android app carries neither piece of software, reads no advertising identifier, and reports nothing to either platform.
Our servers also send Meta their own copy of three of these events, so that Meta counts each once whether or not the browser’s or the app’s report reached it: joining the waiting list on the website, verifying a phone number for a new account, and adding money to a balance, with the amount. Each copy carries your IP address and browser or device details, and a hashed form of your email address; the two app events also carry a hashed form of the phone number on the account and of the account identifier. A hash is a one-way scrambling: Meta can match it against details it already holds, but cannot read the address or number back out of it. The website’s copy is sent only when the Meta Pixel was allowed to load in your browser, so the opt-outs below stop it too. The iOS app’s copies carry the advertising identifier and the hashed details only if you allow tracking when iOS asks; our servers send no copy of anything done in the Android app. Every report to Meta, whether from the website, the app or our servers, carries Meta’s Limited Data Use flag. TikTok’s own use of what it collects, on the website and in the app, is governed by TikTok’s privacy policy, and Meta’s by Meta’s privacy policy.
The only other third-party request the Site makes is for the web fonts it uses to render the page, which are served by Google Fonts and which therefore see your IP address.
The apps do not use cookies. Each stores a session credential on your device so that you stay signed in; we hold only a hashed form of that credential, never the credential itself. Signing out, or deleting your account, ends every session immediately.
To opt out of both pixels on the website, turn on Global Privacy Control or Do Not Track in your browser or in a privacy extension: when the Site sees either signal it loads neither pixel, and our servers send Meta nothing about your visit. Or use this switch, which stores the choice in this browser only and also removes the cookies named above:
Your browser has JavaScript switched off, so neither pixel can load in any case.
Blocking third-party requests works too. The Site works without the pixels, and without the web fonts, though without the fonts it will look plainer. In the iOS app, decline when iOS asks, or turn tracking off later under Settings, Privacy & Security, Tracking; the app then reports without the advertising identifier, and our servers’ copies of its events go without the hashed details.
Your choices and rights
- See and correct your information. Your profile in the app shows what we hold about your account. Write to us for anything not shown there, or to correct something that is wrong.
- Delete your account. You can do this from inside the app. Section 7 sets out exactly what that does, and what survives it.
- Marketing. Opt out using the unsubscribe instruction in any marketing message. We will still send you service messages about your account and your orders.
- Notifications and device permissions. Grant or revoke these in your device’s system settings at any time.
- Advertising measurement. On the website, use the switch in section 5, or turn on Global Privacy Control or Do Not Track in your browser; either way neither pixel loads and our servers send Meta nothing about your visit. This is the “do not sell or share my personal information” choice that some state laws provide for. In the iOS app, decline iOS’s tracking question, or turn tracking off later in Settings; the Android app has nothing to opt out of. Write to us if you would rather we recorded the opt-out ourselves.
Depending on where you live, you may also have the right to confirm whether we hold personal information about you, to access it, to correct it, to have it deleted, to receive a portable copy, to withdraw consent you have given (without affecting processing carried out before you withdrew it), and not to be discriminated against for exercising any of these rights. To exercise them, contact us using section 12. We may need to verify your identity before we act, and we may decline a request where we cannot verify it, or where the law requires us to keep the information.
The identity and bank details Stripe collects under section 4 sit in Stripe’s systems rather than ours, and are governed by Stripe’s privacy policy as well as this one. We will pass a request on where we can, but for that information Stripe may need to deal with you directly.
How long we keep it
We keep your information for as long as we need it to provide the Services, meet our legal and accounting obligations, enforce our agreements, and resolve disputes. Retention is judged category by category, according to why the information was collected and what law requires of us.
Deleting your account closes it, ends every active session at once, and stops any further use of your information to provide the Services. It is not an instant erasure of everything, for two reasons we would rather state plainly than bury:
- Records that exist in order to be kept, are kept. Your age attestation, your acceptance of the Terms, and your transaction and payment history are retained for as long as tax, accounting, anti-fraud and consumer-protection law requires, and in order to defend legal claims. Payment and payout records are separately held by Stripe under its own retention rules.
- We keep a link between a closed account and a new one. If you delete your account and later open another using the same Apple ID, Google account or email address, we retain a pointer recording that the new account follows the old one. It exists solely to stop one-per-person benefits being claimed twice, and carries nothing about what the old account did.
Where you have a right to erasure and none of the grounds above apply, write to us and we will delete.
Where it is processed
Drip Drops is operated from the United States, and your information is stored and processed there. Our service providers may process it in other countries. If you use the Services from outside the United States, you understand that your information will be transferred to, stored in, and processed in the United States, where data protection law may differ from the law where you live. Where the law requires safeguards for such transfers, we rely on our providers’ standard contractual clauses and equivalent measures.
How we protect it
We use reasonable procedural, physical and electronic safeguards, including encryption in transit and at rest, designed to protect your information against accidental or unlawful destruction, loss, misuse, alteration, and unauthorised access or disclosure. Session credentials are stored only as hashes. Card numbers and identity documents are held by our processors, not by us.
No method of transmission or storage is completely secure, and we cannot guarantee absolute security. The safety of your account also depends on you: use a device passcode, keep your sign-in provider secure, and tell us at once if you believe someone else has reached your account.
Age restrictions
The Site and the Services are for people aged 18 and over. We ask you to confirm your age, and we record that confirmation. We do not knowingly collect or solicit information from anyone under 18. If we learn or suspect that a user is under 18, we will close the account and delete the information as soon as we can. If you believe a child has given us information, contact us and we will delete it.
Changes to this policy
We change the Services regularly, and those changes sometimes mean we collect new information, or use what we already hold in a new way. When we revise this policy we will update the effective date and version at the top of this page. For material changes we will also tell you in the app or by email before they take effect. Your continued use of the Services after a change takes effect is subject to the updated policy.
Contacting us
Questions about this policy, and requests about your own information, go to our support page, or to the address below.
- Operated by
- Curated Drops, LLC
- Address
- 800 Third Avenue FRNT A #1084
New York, NY 10022
United States - support@dripdrops.co